Hey,
I'm creating some rpms for fast Snort+Pulledpork deployment but I have
some doubts about how Pulledpork controls snort so_rules.
My pulledpork configuration is managing rules from
snort-community/emerging-threats and is generating the snort.rules files.
I have sorule_path configured and my doubt comes here, does pulledpork
also downloads and configures so_rules or do I need to "feed" that
directory with so_rules for pulledpork process them?
Thanks in advance.